£150,000 crypto cracking challenge launched

RSA is offering £150,000 to the first person to crack a 2048-bit encryption key

Internet security firm RSA Security is challenging individuals to test the strength of its algorithms in its latest crypto Factoring Challenge, with a cash prize of nearly £150,00 at stake.

Cryptography experts must determine the two prime numbers that have been used to generate eight "challenge" numbers, ranging from 576 bits to 2048 bits. The first person to submit a correct factorisation of any of the challenge numbers is eligible for a cash prize, ranging from ($10,000 (£7,045) for a 576-bit key to $200,000 (£140,895) for a 2048-bit key.

The Challenge is designed to test the strength of lengthy RSA algorithms, and hopes to encourage research into computational number theory and the difficulty of properly factoring large numbers. The results of the competition will be used to determine the key lengths used in RSA encryption in the future.

"The cash prizes offered are intended as modest rewards for some of the hard work that goes into coordinating the resources and effort required to surmount some of the very difficult technical barriers encountered in factoring large integers," said Burt Kaliski, chief scientist at RSA laboratories.

Factoring a number means representing it as the product of prime numbers -- numbers that are not evenly divisible by any smaller number other than one. As the size of the number increases, the difficulty of factoring increases rapidly. To date, the largest algorithm of this type to be factored is 512 bits -- RSA believes that the 576-bit value is likely to be factored in the next year.

RSA explains that the factoring of a challenge number of a specific length does not mean that the RSA cryptosystem is "broken". "It does not even mean, necessarily, that keys of the same length as the factored challenge number must be discarded," states the challenge guidelines. But the outcome of the competition will establish an idea of the amount of work required to factor a modulus of a given size, and offer an estimate of the cost of breaking a particular RSA key pair.

The new RSA Challenge replaces the RSA Laboratories' original challenge, which began in the early 1990s.

Is your PC safe? Find out in ZDNet UK's Viruses and Hacking News Section.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Security forum.

Let the editors know what you think in the Mailroom. And read other letters.